
DeTTECT
Detect Tactics, Techniques & Combat Threats
defensive-toolsincident-responseintrusion-detection+4

Detect Tactics, Techniques & Combat Threats

Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, Suricata and…

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Automated IP ban service that detects failed login attempts from event logs and files, blocking attackers on Windows and Linux via firewall…

Tools for investigating Log4j CVE-2021-44228

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…